Skip to content
Ping Identity logo

Ping Identity

Verificado

TI y Seguridad · www.pingidentity.com

¿Es tu herramienta? Reclama esta ficha →

Resumen

Ping Identity is an enterprise identity and access management platform providing single sign-on, multi-factor and passwordless authentication, and customer identity (CIAM) capabilities across cloud (PingOne) and self-hosted (PingFederate, PingAccess, PingDirectory) deployments. It targets large enterprises and government organizations that need deep federation protocol support spanning workforce, customer, and B2B partner identity.

El problema que resuelve Ping Identity

Large enterprises with complex, often legacy federation requirements need an IAM platform flexible enough to span workforce, customer, and partner identity across both cloud and on-premises systems without re-architecting. Ping Identity fits this need with its broad SAML/OIDC/WS-Federation support and dual cloud/self-hosted deployment model, but reviewers consistently note that setup and administration stay technical enough to require dedicated identity engineers.

Contexto para decidir

Usa estos puntos para comprobar si el producto encaja con tu operación, no solo con la lista de funciones.

  • Precio de entrada publicado: $36 per user/year. Confirma límites de usuarios, uso y funciones por plan.
  • Despliegue: cloud, on_premise. Comprueba requisitos de seguridad, residencia de datos y acceso para todos los equipos que lo utilizarán.
  • Integraciones verificadas: Amazon Web Services (AWS), Microsoft Azure, Microsoft 365 / Office 365, Salesforce, ServiceNow, Slack. Valida el sentido de sincronización y los límites del plan elegido.
  • La ficha se comprobó por última vez el 31/7/2026; los precios y las funciones pueden cambiar.

Cómo evaluar Ping Identity

Una ficha ayuda a crear una lista corta; una prueba con el flujo real del equipo decide si la herramienta encaja. Usa esta lectura junto con los datos estructurados y confirma cualquier cambio con el proveedor.

Encaje de flujo

El registro la considera especialmente adecuada para Large enterprises needing deep SAML/OIDC federation with legacy on-premises systems, Organizations wanting both cloud (PingOne) and self-hosted (PingFederate/PingAccess/PingDirectory) deployment flexibility, Enterprises managing complex B2B partner and customer identity (CIAM) alongside workforce identity in one platform. Comprueba que ese contexto coincide con el volumen, los roles y los procesos que debe soportar tu equipo.

Preguntas del piloto

  • ¿Puede Ping Identity completar el flujo crítico sin trabajo manual fuera de la herramienta?
  • ¿Las conexiones registradas (Amazon Web Services (AWS), Microsoft Azure, Microsoft 365 / Office 365, Salesforce) cubren el sentido de sincronización, los permisos y el volumen que necesitamos?
  • ¿Qué límites de usuarios, uso, almacenamiento, soporte o seguridad aparecen después del precio inicial?

Evidencia y vigencia

Esta ficha se comprobó el 31/7/2026. La fecha indica cuándo se revisó el registro, no una garantía de que el proveedor no haya cambiado sus condiciones después.

Ideal para

  • Large enterprises needing deep SAML/OIDC federation with legacy on-premises systems
  • Organizations wanting both cloud (PingOne) and self-hosted (PingFederate/PingAccess/PingDirectory) deployment flexibility
  • Enterprises managing complex B2B partner and customer identity (CIAM) alongside workforce identity in one platform

No encaja si

  • Small businesses or startups wanting a quick, self-serve setup without dedicated IAM/identity engineering staff
  • Buyers who want fully transparent, self-service pricing rather than contacting sales for most tiers

Por qué está listada

  • Widest federation protocol support (SAML, OIDC, WS-Federation) of any IAM vendor evaluated, verified against its own developer docs.
  • Rare dual deployment model — same platform available as PingOne cloud SaaS or self-hosted PingFederate/PingAccess.

Precios

Workforce Essential

$36 per user/year

Centralized SSO, directory, and MFA foundations for workforce identity with Microsoft ecosystem integration.

  • No-code orchestration engine
  • Single sign-on
  • Directory services
  • Open standards support (SAML, OIDC)
  • Employee self-service portal
  • SCIM/LDAP/Kerberos/RADIUS provisioning

Workforce Plus

$72 per user/year

Everything in Essential plus adaptive MFA and passwordless authentication.

  • Everything in Essential
  • Adaptive/risk-based MFA
  • Passwordless & FIDO authentication
  • Microsoft ecosystem integrations
  • Device authorization

Customer (CIAM) Essential

$35,000 per year (flat)

No-code orchestration for building customer sign-up, sign-in, and profile-management experiences.

  • No-code orchestration engine
  • Single sign-on
  • Customizable registration/sign-on flows
  • Unified customer profile
  • RESTful APIs
  • Inbound provisioning / LDAP

Customer (CIAM) Plus

$50,000 per year (flat)

Adds adaptive MFA alternatives and API access control.

  • Everything in Essential
  • Adaptive MFA
  • Mobile app MFA embedding
  • Customer device management
  • Transaction approvals
  • API access management

Funciones

Audit logsPingOne Audit page, webhooks, API, and PingOne App for Splunk provide event/audit logging.
Compliance reportingAudit/reporting dashboards and Splunk integration exist, but no dedicated named compliance-reporting module.
Device managementReal-time device trust evaluation and integrations with Intune, Jamf, and Workspace ONE UEM.
Multi-factor authenticationPingID delivers adaptive/risk-based MFA and passwordless/FIDO authentication.
Privileged access managementJIT Privileged Access capability listed, but no full PAM suite (vaulting, session recording).
Public APIExtensive RESTful APIs documented at developer.pingidentity.com.
Role-based access controlReferences 'granular controls' and least-privilege access but doesn't explicitly name RBAC.
SCIM / directory provisioningPingFederate supports SCIM 2.0 inbound provisioning endpoints.
Self-hosting / on-premPingFederate, PingAccess, PingDirectory deployable self-hosted, alongside PingOne cloud SaaS.
SSO / SAMLPingFederate explicitly supports SAML 2.0, SAML 1.1, WS-Federation, WS-Trust, OAuth 2.0, and OIDC.

Integraciones

Amazon Web Services (AWS)Microsoft AzureMicrosoft 365 / Office 365SalesforceServiceNowSlackZoomBoxDropboxSharePointZendeskCrowdStrikeDuo SecurityJamfMicrosoft IntuneWorkspace ONE UEM

Seguridad y cumplimiento

SOC 2 Type 2ISO 27001ISO 27018GDPRCCPADPDPA

Pros y contras

Pros

  • Strong MFA, passwordless, and adaptive authentication options praised by reviewers for security and user experience
  • Widest federation protocol support (SAML 2.0/1.1, WS-Federation, WS-Trust, OAuth2, OIDC) for legacy and enterprise integrations
  • Broad integration flexibility across enterprise apps, directories, and MDM/UEM platforms
  • High reviewer satisfaction on Capterra (4.7/5 across ease of use, features, and value for money)

Contras

  • Complex initial setup and configuration; steep learning curve for admins without federation experience
  • Admin interface described as clunky/unintuitive for the on-premises product line by reviewers
  • Documentation can be confusing, with reviewers recommending an experienced integration partner
  • Mobile app has reported sync/connectivity issues

Qué muestra el registro

4.4/5
268 reviews agregadasÚltima comprobación 2026-07-31

Reviewers rate Ping Identity highly for MFA, passwordless authentication, and integration flexibility across enterprise apps and directories. The most common complaint is a complex initial setup that typically requires dedicated identity engineering staff.

Resumen y puntuación agregados de plataformas públicas de reseñas. Enlazamos a las reseñas originales en lugar de reproducirlas — lee la fuente antes de decidir.

Reseñas de usuarios

Escritas por cuentas de Audyense · moderadas antes de publicarse

Todavía no hay reseñas de usuarios.

¿Has usado Ping Identity? Sé el primero en contarles a otros compradores qué funcionó de verdad.